WordPress FunCaptcha Plugin Cross-Site-Request Forgery Vulnerability

FunCaptcha plugin for WordPress is prone to a cross-site-request forgery vulnerability because it fails to sufficiently sanitize user-supplied data.

Exploiting this issue may allow a remote attacker to perform certain unauthorized actions and gain access to the affected application. Other attacks are also possible.

FunCaptcha plugin versions prior to 0.3.3 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus